Plaintext Password Storage
The cluster centers on concerns that a service or website stores user passwords in plaintext, with debates on security implications and recommendations to use salted hashes instead.
Activity Over Time
Top Contributors
Keywords
Sample Comments
Which means that they're storing your password in plaintext somewhere.
What's the fear? Aren't all passwords encrypted on the server side?
Why would I bother making a secure password if it's stored in plaintext anyway?
Was your password in plaintext? Just to confirm what others have been saying.
It doesn't imply they're storing your password in plaintext, no.
Yeah, and they didn't mention "storing your passwords in plain text"
The assumption you're making here is that the passwords are not stored in plain text :P
This usually hints at plain text storage of passwords, so: Please do not store passwords, store (salted) hashes instead.
Plain text passwords are bad, don't send it in the email at all. I hope they are stored as hashes and not plaintext on the app's end.
no, they definitely shouldn't, for the same reason they don't store the real passwords in plain text. it would be a terrible security hole.